ISO/IEC 29167-16:2022
Information technology — Automatic identification and data capture techniques — Part 16: Crypto suite ECDSA-ECDH security services for air interface communications
Information technology — Automatic identification and data capture techniques — Part 16: Crypto suite ECDSA-ECDH security services for air interface communications
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 31
- Дата публикации:
- 29 ноября 2022 г.
- Издание:
- ISO/IEC IS 29167 edition 2 version 1
- ICS:
- 35.040.50
This document describes a crypto suite based on elliptic curve cryptography (ECC) for the ISO/IEC 18000 series of standards protocol. In particular, this document specifies the use of elliptic curve Diffie-Hellman (ECDH) key agreement in a secure channel establishment and the use of elliptic curve digital signature algorithm (ECDSA) in an authentication mechanism. This document specifies a crypto suite for ECDSA-ECDH for air interface for RFID systems. The crypto suite is defined in alignment with existing air interfaces. This document defines a mutual authentication method and methods of use for the cipher. A Tag and an Interrogator can support one, a subset, or all of the specified options, clearly stating what is supported. Key update is not supported in this document. ECDSA-ECDH cipher is a high-weight security protocol especially for active RFID system, aiming at meeting those scenarios with high level security requirement.
Abstract
Overview - ISO/IEC 29167-16:2022 (ECDSA‑ECDH crypto suite for air interface)
ISO/IEC 29167-16:2022 defines a public‑key crypto suite based on elliptic curve cryptography (ECC) for RFID air interfaces in the ISO/IEC 18000 family. The standard specifies use of ECDH (Elliptic Curve Diffie‑Hellman) for secure channel establishment and ECDSA (Elliptic Curve Digital Signature Algorithm) for mutual authentication between a Tag and an Interrogator (reader). It is intended as a high‑weight security protocol, particularly for active RFID systems requiring strong cryptographic protections. This second edition (2022) updates references and aligns the suite with existing air interface parameters.
Key topics and technical requirements
- Crypto primitives: ECDSA for entity authentication and ECDH for key agreement (ECDSA‑ECDH crypto suite).
- Mutual authentication: Protocols and message formats for mutual authenticate messages (MAM), including Authenticate(MAM1.1 / MAM1.2) and associated responses.
- Secure channel establishment: Use of ECDH to derive session keys (SEK, SIK) for confidential and integrity‑protected communication.
- Message and response formats: Mandatory and optional message structures; Tags and Interrogators must clearly declare supported options.
- Conformance rules: Devices claiming conformance must implement mandatory messages and comply with ISO/IEC 18000 air interface requirements; optional parameters may be selectively implemented.
- Operational mechanics included: State diagram, initialization/reset behavior, authentication procedures, fragmentation/defragmentation, and error codes.
- Supporting material: Parameter definitions, certificate format, test vectors, examples of ECC parameters, and guidance on Trusted Third Party (TTP) usage.
- Limitations: Key update is not supported by this document - long‑term key management considerations must be handled externally.
- Security focus: Designed as a high‑weight protocol suited to scenarios with elevated security requirements for RFID air interfaces.
Practical applications and users
Who benefits from ISO/IEC 29167-16:
- RFID system designers implementing secure air interfaces for asset tracking, logistics, supply chain security.
- Tag and Interrogator (reader) manufacturers seeking standardized ECC‑based authentication and secure channel services.
- Security architects and integrators deploying active RFID in sensitive environments (industrial IoT, critical infrastructure).
- Conformance and test laboratories using the document’s test vectors and conformance rules to validate implementations.
- Standards and procurement teams specifying high‑security RFID solutions that align with ISO/IEC 18000 protocols.
Related standards (normative and informative)
- ISO/IEC 18000‑4 (RFID air interface at 2,45 GHz)
- ISO/IEC 29167‑1 (AIDC security services for RFID air interfaces)
- ISO/IEC 11770‑3, 11770‑6 (Key management; key derivation)
- ISO/IEC 9798‑3, 14888‑3 (Entity authentication and digital signatures)
- ISO/IEC 18031, 18033‑3, 9797‑3 (Random generation, encryption, MACs)
ISO/IEC 29167‑16 is essential for stakeholders implementing ECC‑based authentication and secure channels on RFID air interfaces, providing a prescriptive, interoperable approach to strong RFID security.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 31 - Automatic identification and data capture techniques
- SKU
- ISO/IEC 29167-16:2022
Похожие стандарты
Стандарты, упомянутые в описании
ISO/IEC TR 20017:2011
ДействующийInformation technology — Radio frequency identification for item management — Electromagnetic interference im…
Overview ISO/IEC TR 20017:2011 is an informative Technical Report addressing the electromagnetic interference (EMI) impact of ISO/IEC 18000 RFID interrogator emitters on implantable pacemakers and im…
BS ISO/IEC 29167-16:2022
ДействующийInformation technology. Automatic identification and data capture techniques. Crypto suite ECDSA-ECDH securit…
ISO/IEC 18000-4:2018
ДействующийInformation technology — Radio frequency identification for item management — Part 4: Parameters for air inte…
Overview ISO/IEC 18000-4:2018 defines the air interface for radio frequency identification (RFID) devices operating in the 2.45 GHz ISM band for item management. The standard provides a common techni…
ISO/IEC 29167-12:2015
ДействующийInformation technology — Automatic identification and data capture techniques — Part 12: Crypto suite ECC-DH…
Overview ISO/IEC 29167-12:2015 specifies a crypto suite for ECC-DH (Elliptic Curve Diffie-Hellman) tailored to RFID air interface communications. Intended for use with the ISO/IEC 18000 family of air…
BS ISO/IEC 11770-3:2021
ДействующийInformation security. Key management. Mechanisms using asymmetric techniques.
ISO/IEC 9798-3:2019
ДействующийIT Security techniques — Entity authentication — Part 3: Mechanisms using digital signature techniques
Overview ISO/IEC 9798-3:2019 - IT Security techniques: Entity authentication, Part 3: Mechanisms using digital signature techniques specifies entity authentication mechanisms that rely on digital sig…
ISO/IEC 18031:2025
ДействующийInformation technology — Security techniques — Random bit generation
Overview ISO/IEC 18031:2025 - "Information technology - Security techniques - Random bit generation" defines a conceptual model and security requirements for random bit generators (RBGs) used for cry…